Security Advisory

CVE-2021-40419

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-01-28 19:10:07
Last updated 2025-04-15 19:21:23
Assigner talos
CVSS score 10.0
State PUBLISHED

Description

A firmware update vulnerability exists in the 'factory' binary of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted series of network requests can lead to arbitrary firmware update. An attacker can send a sequence of requests to trigger this vulnerability.